HI,
I have 100D with HA, its work properly.recently I integrates AD with fortigate through FSSO applications. My FSSO connectivity fine and I can monitor all user in fortigate in the users tab User & Devices >>Monitor >>Firewall and Check on FSSO all users listed which are logon but here some users show as a guest why this behavior Please help regarding this .
FortiOS Patch 5.0.9
Zohaib Khan
Network /System Engineer
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hello,
The reasons for those users logged in as FSSO Guest could be the following.
a) Users who are trying to authenticate with FSSO are non domain users.
b) Users are not part of the AD users group which you are monitoring with FSSO.
c) Users are configured in the Ignore User List settings of Collector Agent such that those users login event will not be send by the Collector Agent.
For more information about the FSSO Guest users you can check with the following kb articles.
Thanks & Regards,
Inder
What topolgy are you using ie Collector Agents and DC agents and what AD groups are you pulling through the collector agent?
If you try running a 'diag debug authd fsso list' on the Fortigate it should show which group it can see and compare this to the logs on the Collector/DC Agent.
Happy Hunting...
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1712 | |
1093 | |
752 | |
447 | |
231 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.